Enable job alerts via email!

Security Analyst (Pentester)

Redherd.io

Pretoria

On-site

ZAR 500 000 - 700 000

Full time

27 days ago

Job summary

A leading security consulting firm in Pretoria is seeking a highly skilled Security Analyst (Penetration Tester) to conduct advanced penetration tests and vulnerability assessments. This semi-hybrid role involves working closely with clients to strengthen their security posture and requires strong communication skills and expertise in penetration testing tools. Join a dynamic environment with opportunities for career growth and professional development.

Benefits

Exposure to diverse cybersecurity challenges
Access to continuous training and certifications
Competitive salary and benefits

Qualifications

  • 3-5 years in penetration testing or security analysis, ideally in a consulting environment.
  • Hands-on experience with penetration testing tools.
  • Strong understanding of web application security and network security.

Responsibilities

  • Conduct advanced penetration tests across various platforms.
  • Perform thorough vulnerability assessments.
  • Prepare and deliver penetration testing reports.
  • Communicate results to clients effectively.

Skills

Penetration testing
Vulnerability assessments
Risk analysis
Communication skills
Analytical skills

Education

OSCP – Offensive Security Certified Professional
eJPT / eCPPT – eLearnSecurity Certified Professional Penetration Tester
CEH, CompTIA Security+, CISSP, CISM

Tools

Burp Suite
Kali Linux
Metasploit
Nessus
Nmap
Job description
Position Overview

We are looking for a highly skilled Security Analyst (Penetration Tester) to join one of South Africa’s largest and most reputable security consulting firms, based in Pretoria. This semi-hybrid role offers a dynamic and challenging environment where you will apply your expertise to perform penetration testing, vulnerability assessments, and risk analyses across a range of systems, networks, and applications. You will play a crucial role in helping the client strengthen their security posture through advanced testing and actionable security recommendations.

Key Responsibilities
  • Conduct advanced penetration tests across various platforms, including web applications, networks, and internal/external infrastructures.
  • Perform thorough vulnerability assessments and scans, identifying attack vectors and providing strategic recommendations.
  • Prepare and deliver clear, concise penetration testing reports that outline technical findings, business impact, and risk mitigation strategies.
  • Work closely with internal teams and clients to assess, document, and remediate vulnerabilities discovered during testing.
  • Stay up-to-date on emerging security trends, vulnerabilities, attack methods, and penetration testing tools. Contribute to developing internal methodologies and best practices.
  • Effectively communicate penetration testing results to clients, providing insights into risk levels and actionable next steps for remediation.
  • Mentor junior staff and share knowledge to foster a collaborative and continuous improvement culture within the team.
Key Skills and Qualifications
  • 3-5 years in penetration testing or security analysis, ideally in a consulting environment.
  • Hands‑on experience with penetration testing tools such as Burp Suite, Kali Linux, Metasploit, Nessus, and Nmap.
  • Strong understanding of web application security (OWASP Top 10, SQL Injection, Cross‑Site Scripting, etc.).
  • Expertise in network security, firewalls, IDS/IPS, VPNs, and security monitoring tools.
  • Proficient in scripting languages (Python, Bash, etc.) for automation and exploit development.
  • Familiarity with cloud environments (AWS, Azure, GCP) and securing cloud systems is a plus.
  • Knowledge of risk management frameworks (e.g., NIST, ISO) is beneficial.
  • Certifications:
    • OSCP – Offensive Security Certified Professional
    • eJPT / eCPPT – eLearnSecurity Certified Professional Penetration Tester
    • CRTP, CARTP, CRTE – Altered Security
    • PJPT, PNPT – Practical Network Penetration Tester
    • CEH, CompTIA Security+, CISSP, CISM (beneficial)
Soft Skills
  • Strong analytical and problem‑solving abilities.
  • Exceptional communication skills, capable of presenting technical findings in a clear and structured manner to both technical and non‑technical audiences.
  • Ability to manage multiple client engagements and work independently in a fast‑paced environment.
Why Join Our Client?
  • Exposure to a diverse set of clients and cybersecurity challenges, offering immense career growth opportunities.
  • Access to continuous training, industry certifications, and professional development.
  • Competitive salary and benefits.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.